lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20050829122614.15359.qmail@securityfocus.com> Date: 29 Aug 2005 12:26:14 -0000 From: s2b@...mail.com To: bugtraq@...urityfocus.com Subject: Vulnerability in Helpdesk software Hesk 0.92 By The Name Of Allah Vulnerability in Helpdesk software Hesk .. Vulnerability Type : Login into The Administrator Menu With out Password Injected version : Helpdesk software Hesk 0.92 Vulnerability Example http://www.springporttwppd.com/helpdesk/ add : admin.php http://www.springporttwppd.com/helpdesk/admin.php Choose the username : administrator Put any password in the password field change the url to : admin_main.php http://www.springporttwppd.com/helpdesk/admin_main.php You Are Noe in the Administrator menu .. Thx For : Devil-00 & ADBUCTER Peace